US2009097719A1PendingUtilityA1

Secure data storage device and method of storing and retrieving user data

Assignee: RITECH INTERNAT LTDPriority: Jul 31, 2007Filed: Jul 31, 2008Published: Apr 16, 2009
Est. expiryJul 31, 2027(~1 yrs left)· nominal 20-yr term from priority
Inventors:Boon Lum Lim
G06F 2221/2117G06F 21/40G06F 21/79G06F 21/32
42
PatentIndex Score
0
Cited by
0
References
0
Claims

Abstract

In a portable and secure data storage device 100 , access may be gained to a user memory by scanning at least two different fingerprints with a fingerprint scanner 12 . In an enrolment mode of the data storage device, at least two different administrator fingerprints from at least one administrator are scanned and enrolled. In a further enrolment mode of the data storage device, at least two different user fingerprints from at least one user are scanned and enrolled. In a normal operation mode of the data storage device, at least two different fingerprints are scanned and verified against the enrolled administrator fingerprints and the enrolled user fingerprints, and access is gained to the data storage device for storing user data and/or retrieving user data if the verification of each of the different fingerprints is successful.

Claims

exact text as granted — not AI-modified
1 . A method of storing and/or retrieving user data in a secure data storage device, the method comprising:
 enrolling administrator fingerprints by:
 in an enrolment mode of the data storage device, scanning M different administrator fingerprints from at least one administrator (M≧2); 
 generating administrator fingerprint bio-data from the scanned administrator fingerprints; and 
 storing the administrator fingerprint bio-data to enrol the administrator fingerprints, 
   accessing the data storage device by:
 in a normal operation mode of the data storage device, scanning P different fingerprints (2≦P≦M); 
 verifying each of the P fingerprints against the enrolled administrator fingerprints; 
 if the verification of each of the P fingerprints is successful:
 storing the user data by: 
 receiving the user data; and 
 storing the user data in the data storage device, and/or 
 retrieving the user data by: 
 reading the user data in the data storage device; and 
 outputting the user data from the data storage device. 
 
   
   
   
       2 . The method according to  claim 1 , further comprising:
 enrolling user fingerprints by:
 in an enrolment mode of the data storage device, scanning N different user fingerprints from at least one user (N≧2); 
 generating user fingerprint bio-data from the scanned user fingerprints; and 
 storing the user fingerprint bio-data to enrol the user fingerprints, 
   
     wherein, in accessing the data storage device, each of the P fingerprints is verified against the enrolled administrator fingerprints and the enrolled user fingerprints (2≦P≦M+N). 
   
   
       3 . The method according to  claim 1 , further comprising:
 resetting fingerprints by:
 in an enrolment mode of the data storage device, scanning M different fingerprints; 
 verifying each of the M fingerprints against the enrolled administrator fingerprints; 
 if the verification of each of the M fingerprints is successful, resetting all enrolled administrator fingerprints. 
   
   
   
       4 . The method according to  claim 2 , further comprising:
 resetting fingerprints by:
 in an enrolment mode of the data storage device, scanning M different fingerprints; 
 verifying each of the M fingerprints against the enrolled administrator fingerprints; 
 if the verification of each of the M fingerprints is successful, resetting all enrolled administrator fingerprints and all enrolled user fingerprints. 
   
   
   
       5 . The method according to  claim 2 , further comprising:
 resetting fingerprints by:
 in an enrolment mode of the data storage device, scanning Q different fingerprints (Q≦M+N); 
 verifying each of the Q fingerprints against the enrolled administrator fingerprints and the enrolled user fingerprints; 
 if the verification of each of the Q fingerprints is successful, and the verification of at least one of the Q fingerprints is successful against an enrolled user fingerprint, resetting all enrolled user fingerprints. 
   
   
   
       6 . The method according to  claim 1 , wherein M=2. 
   
   
       7 . The method according to  claim 2 , wherein N=2 or 4. 
   
   
       8 . The method according to  claim 4 , wherein N=2 or 4. 
   
   
       9 . The method according to  claim 5 , wherein N=2 or 4. 
   
   
       10 . The method according to  claim 1 , wherein P=2. 
   
   
       11 . The method according to  claim 1 , wherein Q=2. 
   
   
       12 . The method according to  claim 1 , wherein if the verification of at least three subsequent fingerprints is unsuccessful, access is denied to the data storage device. 
   
   
       13 . The method according to  claim 1 , further comprising:
 storing the user data by:   receiving the user data;   encrypting the user data to produce encrypted user data; and   storing the encrypted user data in the data storage device, and/or retrieving the user data by:   reading the encrypted user data in the data storage device;   decrypting the encrypted user data to produce the user data; and   outputting the user data from the data storage device.   
   
   
       14 . A data storage device, comprising:
 a fingerprint sensor configured to scan fingerprints to generate fingerprint bio-data;   a bio-data storage unit configured to store the fingerprint bio-data;   a user data storage unit configured to store user data;   a data processing system configured to interface with the fingerprint sensor, the bio-data storage unit, the user data storage unit, and an external host computer system, wherein the data processing unit is configured to store and/or retrieve user data in the data storage device by:   enrolling administrator fingerprints by:
 in an enrolment mode of the data storage device, scanning M (M≧2) different administrator fingerprints from at least one administrator by the fingerprint sensor; 
 the data processing system generating administrator fingerprint bio-data from the scanned administrator fingerprints, and storing the administrator fingerprint bio-data in the bio-data storage unit to enrol the administrator fingerprints, 
   accessing the data storage device by:
 in a normal operation mode of the data storage device, scanning P (2≦P≦M) different fingerprints by the fingerprint sensor; 
 the data processing system verifying each of the P fingerprints against the enrolled administrator fingerprints; 
 if the verification of each of the P fingerprints is successful:
 storing the user data by: 
 the data processing system receiving the user data from the external host computer system, and storing the user data in the user data storage unit, and/or 
 retrieving the user data by: 
 the data processing system reading the user data from the user data storage unit, and outputting the user data to the external host computer system. 
 
   
   
   
       15 . The data storage device according to  claim 14 , wherein the data processing unit is further configured to:
 enrolling user fingerprints by:
 in an enrolment mode of the data storage device, scanning N (N≧2) different user fingerprints from at least one user by the fingerprint sensor; 
 the data processing system generating user fingerprint bio-data from the scanned user fingerprints, and storing the user fingerprint bio-data to enrol the user fingerprints, 
   
     wherein, in accessing the data storage device, each of the P (2≦P≦M+N) fingerprints is verified against the enrolled administrator fingerprints and the enrolled user fingerprints. 
   
   
       16 . The data storage device according to  claim 14 , wherein said fingerprint sensor is a capacitive or electric field sensing device. 
   
   
       17 . The data storage device according to  claim 14 , further comprising a computer serial bus interface unit coupled to the data processing system for connecting the data storage device to the host computer system. 
   
   
       18 . The data storage device of  claim 17 , wherein the computer serial bus interface unit comprises a USB or FireWire™ (IEEE1394) computer serial bus interface unit.

Join the waitlist — get patent alerts

Track US2009097719A1 — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.